Identicon of IP address 152.53.37.109

152.53.37.109

IP Risk Score: 45 / 100

This IP presents a moderate risk and may be associated with automated activity. Moderate behavioral signals suggest possible automated probing or scanning. This assessment is backed by strong and consistent detection signals. The combined signals place this IP in a moderate risk category. Monitoring is recommended, with defensive action considered if activity continues.

What is this IP address?
IP Address: 152.53.37.109
Country: United States flag United States (US)
Region Name: Virginia (VA)
City: Manassas
ISP: netcup GmbH
Organization: netcup GmbH
Threat level: 45 / 100
Conf. level: 100 / 100
Properties
ASN: AS214996
AS Name: netcup GmbH
Timezone: America/New_York
Reverse DNS: nobody.yourvserver.net
Status: Suspicious
Mobile

Observed Client Profile
  • OS: Windows (100%)
  • Device Type: Desktop (100%)
  • Browser Family: Firefox (100%)
  • Rendering Engine: Gecko (100%)
Behavioral Indicators

The IP exhibits characteristics of potential automation, including a mobile user-agent and a lack of reverse DNS resolution. The behavior is not clearly malicious but warrants further monitoring due to the unusual combination of signals.

The supernet (152.53.0.0/16), which this IP belongs to, exhibits suspicious behavior characterized by repetitive low-interaction visits, a high number of identical user agents, and a mix of legitimate and potentially malicious bot activity. The presence of multiple IPs with crawler-like behavior and some with mismatched DNS records raises concerns about coordinated automation and potential scraping activities.

User-Agent Samples
  • Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:136.0) Gecko/20100101 Firefox/136.0

IP Location

Region: Virginia, United States

City: Manassas

Local time: 2026-07-03 16:39:06